PyPI · pypi.org
aibrowser
Py Import Time Dynamic Dangerous Import: Dynamic __import__('sys') — reflection bypass for static checks.
Why PkgRadar flagged 1.1.1
| Severity | Signal | Evidence |
|---|---|---|
| high | Py Import Time Dynamic Dangerous Import | Dynamic __import__('sys') — reflection bypass for static checks. · aibrowser-1.1.1/python_bridge/__init__.py |
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · aibrowser-1.1.1/src/cli/aib_repl.py |
| high | Py Runtime Dynamic Dangerous Import | Dynamic __import__('os') — reflection bypass for static checks. · aibrowser-1.1.1/vendor/browser_use/skill_cli/python_session.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.1.1 | High risk | 108 | 2026-05-30 |
1.1.0 | High risk | 108 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi aibrowser==1.1.1